PoC Index

CVE-2020-35273

HIGH 8.0EPSS 0.6%

EgavilanMedia User Registration & Login System with Admin Panel 1.0 is affected by Cross Site Request Forgery (CSRF) to remotely gain privileges in the User Profile panel. An attacker can update any user's account.

CVSS v3.1
8.0 HIGHCVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H
CVSS v2.0
6.0 MEDIUMAV:N/AC:M/Au:S/C:P/I:P/A:P
EPSS
0.56% chance of exploitation in the next 30 days, 45th percentile
Published
2020-12-21
Updated
2026-07-09

Proof-of-concept exploits (1)

References

Related